ADT Inc. Data Breach Lawsuit Investigation

Active investigation · Free, confidential case review
Call (954) 799-5914
Active investigation Data breach · Consumer Notices mailed Jun 29, 2026

Received a June 2026 breach notice from ADT?

Dapeer Law, P.A. is investigating a potential class action against ADT Inc., the Florida-based residential and commercial security company, on behalf of customers and prospective customers whose personal information may have been exposed in the April 2026 cyber incident.

Submit your claim See what to do No fee unless we recover for you
Breach window
April 20, 2026
Single-day unauthorized access
Notification delay
70 days
Discovered Apr 2026, notices Jun 2026
Credit monitoring
12 months
Through Cyberscout (single bureau)
Eligibility

Who may qualify

You may be eligible to participate in a class action if any of the following applies:

  • You received a data breach notification letter from ADT dated June 2026.
  • Your letter offered enrollment in 12 months of free Cyberscout credit monitoring (single bureau, a TransUnion company).
  • You had personal information held by ADT as a customer or as a prospective customer who requested information about its security services.
  • No proof of harm required to consult with counsel. You do not need to have already suffered identity theft to explore your legal options.
  • Excluded: individuals who did not receive a breach notice and whose information was not involved in the incident.

Not sure if you qualify?

Send us your notice, we'll confirm your eligibility at no cost.

Check eligibility
Background

What happened

According to filings with the Massachusetts and Texas Attorneys General, ADT Inc. detected unauthorized activity in its environment on April 20, 2026. The company reports that an unauthorized actor accessed a limited set of databases containing customer and prospective-customer records, and that the access was identified and terminated the same day. ADT states it activated its incident response protocols, engaged third-party cybersecurity experts to conduct a forensic investigation, and notified law enforcement.

ADT began mailing written notices to affected individuals on June 29, 2026, roughly 70 days after the incident was detected, and reported the breach to Massachusetts and Texas regulators on July 27 and 28, 2026. Regulator filings identify 37,086 individuals in total, 32,546 in Texas and 4,540 in Massachusetts. The notice states that the information involved varied by individual and could include names, addresses and phone numbers, and for a smaller subset, dates of birth, the last four digits of Social Security numbers, and Tax ID numbers for some business customers. ADT states that no credit card or banking information was accessed. Affected individuals are being offered 12 months of Cyberscout credit monitoring, with enrollment required within 90 days of the notice.

Home-security customers give a provider an unusually detailed picture of their household, including service address, contact details and account history. When identifying information from that kind of file is combined with a date of birth or the last four digits of a Social Security number, it can support targeted phishing, account takeover attempts and impersonation of the security provider itself. Dapeer Law is evaluating whether ADT's data security practices and the roughly ten-week gap between detection and notification give rise to claims under state and federal privacy laws.

Home security Massachusetts Attorney General Texas Attorney General Social Security number exposure Notification delay Identity theft risk
Action plan

What to do if you received a letter

1

Keep your notice letter

Do not discard it. Your letter contains the unique enrollment code for the Cyberscout credit monitoring offer and is important evidence if you decide to participate in a lawsuit.

2

Enroll in the free 12-month credit monitoring

Enroll in the Cyberscout (a TransUnion company) single-bureau monitoring offered in your letter. ADT's notice asks recipients to activate within 90 days of the letter date, so do not wait. Accepting this benefit does not waive your right to pursue legal action.

3

Place a fraud alert or credit freeze

Contact Equifax, Experian, and TransUnion to place a fraud alert or freeze on your file. Request a free weekly credit report from AnnualCreditReport.com, and use the FTC's IdentityTheft.gov recovery guide. If your letter indicates that your date of birth or the last four digits of your Social Security number were involved, consider placing a credit freeze rather than relying on monitoring alone.

4

Speak with a data breach attorney

Consultations with Dapeer Law are free and confidential. We'll review your notice, explain your options, and advise whether you may be eligible to join a class action against ADT under state and federal privacy laws.

Submit your notice for a free review

Two minutes online. A licensed attorney reviews every submission.

Submit your claim
Timeline

Breach timeline

Apr 20, 2026 Passed
Unauthorized access to ADT databases detected and terminated
Apr 20, 2026 Passed
Incident response activated, third-party forensic investigation begins
Jun 29, 2026 Passed
Written notices mailed to affected individuals
Jul 27 to 28, 2026 Passed
Breach reported to Massachusetts and Texas Attorneys General
Sep 27, 2026 Active
Approximate deadline to activate Cyberscout monitoring (90 days from notice)
Pending Active
Potential class action filing
Statutes of limitations vary by state and legal theory, typically one to six years. Enrollment in the Cyberscout offer closes 90 days after the date on your letter, so check your notice for the exact cutoff. Waiting can permanently bar your claim.
Possible recovery

Compensation you may be entitled to

Out-of-pocket expenses

Credit freezes, identity restoration services, and other costs incurred responding to the breach.

Time spent monitoring

Hours spent reviewing accounts, disputing fraudulent charges, and dealing with identity theft issues.

Identity theft & fraud losses

Unreimbursed funds stolen from accounts, unauthorized credit lines, fraudulent account openings, or tax refund fraud tied to the breach.

Statutory damages

Certain state data breach and consumer protection statutes provide for fixed damages regardless of actual loss.

Injunctive relief

Court orders requiring ADT to implement stronger data security practices going forward, including tighter access controls on customer and prospective-customer databases and faster notification when an incident occurs.

Compensation categories depend on applicable state law, the types of data exposed, and documented losses. No recovery is guaranteed.

FAQ

Common questions

I received a data breach letter from ADT. What should I do? +

Keep the letter, it contains your Cyberscout enrollment code and documents that you were notified. Activate the 12 months of free monitoring within the 90-day window stated in your notice, consider a fraud alert or credit freeze with all three bureaus if your letter indicates a date of birth or partial Social Security number was involved, and be cautious about calls or emails claiming to be from ADT asking you to confirm account or payment details. You can also contact a data breach attorney for a free review of your options.

Am I eligible to join a class action against ADT? +

You may qualify if you received a notice letter from ADT about this incident, whether you were an ADT customer or only a prospective customer who had provided your information. Eligibility typically depends on your state of residence, the categories of information involved in your particular letter, and whether you have experienced any misuse or out-of-pocket losses. Regulator filings to date identify affected residents of Texas and Massachusetts. A free consultation can confirm where you stand.

How much money could I receive from a class action lawsuit? +

Data breach class action recoveries vary significantly. Settlements typically range from a few hundred dollars for basic out-of-pocket losses to several thousand dollars for documented identity theft, with class size, damages, and negotiation all affecting the final amount. No payout is guaranteed, and this investigation has not yet resulted in a settlement.

What personal information was exposed in the breach? +

ADT's notice states that the information involved varied by individual. For most people it was name, address and phone number. For a smaller group it also included date of birth, the last four digits of a Social Security number, or a Tax ID number in the case of some business customers. ADT states that no credit card or banking information was accessed. Your individual letter is the authoritative source for what applied to you, so read it closely and keep it.

Did ADT offer free credit monitoring? +

Yes. ADT is offering 12 months of credit monitoring through Cyberscout, a TransUnion company, at no cost. The package described in the notice is single-bureau credit monitoring with a credit report, credit score and fraud assistance support. Recipients are asked to activate using the unique code in their letter within 90 days of the letter date. Enrolling does not waive any legal claims you may have.

How many people were affected by the ADT breach? +

Regulator filings identify 37,086 individuals in total, 32,546 Texas residents and 4,540 Massachusetts residents. ADT has not publicly confirmed whether residents of other states were also notified, so the nationwide figure may be higher. This page will be updated as additional state filings become available.

Is there a deadline to take legal action? +

Yes. Statutes of limitations for data breach claims vary by state and legal theory, typically ranging from one to six years. Waiting can permanently bar your claim. Contact us as soon as possible for a free evaluation.

How do I get a copy of the official breach notice? +

ADT's breach report and sample notice letter were filed with the Massachusetts Attorney General and are available for download from the Attorney General's data breach notification page. A parallel filing was made with the Texas Attorney General. If you cannot locate your copy, Dapeer Law can help you obtain the filed notice during a free consultation.

References

Sources & references

Attorney advertising. This page is provided for informational purposes only. It does not constitute legal advice or form an attorney-client relationship. Dapeer Law, P.A. is not affiliated with ADT Inc., Cyberscout, or any credit bureau. Prior results do not guarantee a similar outcome. All information regarding the data incident is drawn from the official notification filed with Massachusetts Attorney General on June 29, 2026.
Free, confidential case review

Don't let the deadline decide for you. Submit your claim today.

You only have a limited window to act. Our team will review your notice, explain your options, and tell you whether you may be eligible to recover compensation, at no cost to you.

Why Dapeer Law

Practice focusConsumer class actions
Licensed inFL · NY · NJ · IL
Case review fee$0
Response timeSame business day
Free case review
Confidential · 2 minutes
Submit claim →
Previous
Previous

Berg Demo Group Data Breach Lawsuit Investigation

Next
Next

Jeffrey David Reuben, M.D. Data Breach Lawsuit Investigation